Pascal Birchler
6 exploits
Active since May 2017
WordPress < 4.7.5 - Cross-Site Scripting via Large File Upload Error Message
CVSS 6.1
WordPress < 4.7.5 - Cross-Site Request Forgery via XML-RPC API
CVSS 8.6
WordPress < 4.7.5 - Unauthenticated Post Meta Data Access via XML-RPC API
CVSS 7.5
WordPress < 4.7.4 - Server-Side Request Forgery via HTTP Redirect Validation
CVSS 8.6
Web Stories < 1.24.0 - Authenticated Server-Side Request Forgery via Hotlink Proxy REST API
CVSS 9.6
Web Stories for WordPress - Privilege Escalation
CVSS 4.9